Skip to content

figure out process of key signing and upload to keyservers

Keys should be signed by the provider. I don't know where this will happen. Ideally it would take place separated from the webapp as the webapp is one of the main attack vectors and it would be nice to keep the service providers key material away from that.

(from redmine: created on 2013-11-22, closed on 2013-11-25)